Vulnerabilities (CVE)

Join the Common Vulnerabilities and Exposures (CVE) community and start to get notified about new vulnerabilities.

Filtered by vendor Ganesha Digital Library Project Subscribe
Filtered by product Ganesha Digital Library
Total 2 CVE
CVE Vendors Products Updated CVSS v2 CVSS v3
CVE-2014-100029 1 Ganesha Digital Library Project 1 Ganesha Digital Library 2017-09-07 5.0 MEDIUM N/A
Multiple directory traversal vulnerabilities in class/session.php in Ganesha Digital Library (GDL) 4.2 allow remote attackers to read arbitrary files via a .. (dot dot) in the (1) newlang or (2) newtheme parameter.
CVE-2014-100030 1 Ganesha Digital Library Project 1 Ganesha Digital Library 2017-09-07 4.3 MEDIUM N/A
Cross-site scripting (XSS) vulnerability in module/search/function.php in Ganesha Digital Library (GDL) 4.2 allows remote attackers to inject arbitrary web script or HTML via the keyword parameter in a ByEge action.